[PATCH 3.16 032/294] netfilter: ipt_CLUSTERIP: fix use-after-free of proc entry

2017-11-06 Thread Ben Hutchings
3.16.50-rc1 review patch. If anyone has any objections, please let me know. -- From: Sabrina Dubroca commit 3840538ad384fb7891adeeaf36624f870c51fc0e upstream. When we delete a netns with a CLUSTERIP rule, clusterip_net_exit() is called first, removing

[PATCH 3.16 032/294] netfilter: ipt_CLUSTERIP: fix use-after-free of proc entry

2017-11-06 Thread Ben Hutchings
3.16.50-rc1 review patch. If anyone has any objections, please let me know. -- From: Sabrina Dubroca commit 3840538ad384fb7891adeeaf36624f870c51fc0e upstream. When we delete a netns with a CLUSTERIP rule, clusterip_net_exit() is called first, removing /proc/net/ipt_CLUSTERIP.